Advanced Denial of Service Protection
TippingPoint's Advanced Denial of Service (DoS) Protection offers the most comprehensive coverage
against a broad variety of Denial of Service attacks. TippingPoint utilizes a hybrid approach to
provide comprehensive protection against DoS attacks that exploit vulnerabilities, attacks
from other Distributed Denial of Service (DDoS) attack programs and attacks from bandwidth
consuming packet floods. In addition, TippingPoint's Advanced DoS Protection provides coverage
against the following:
- SYN Floods: An attacker floods a server with malicious connection
requests (TCP SYNs) with spoofed source IP addresses, preventing legitimate clients
from accessing the server.
- Established Connection Floods: An attacker takes control of many
computers (bot army) and has the bot army establish a large number - potentially
millions - of malicious TCP connections to a server, preventing it from accepting
new requests from legitimate clients.
- Connections Per Second Floods: An attacker uses a bot army to
repeatedly request resources, such as Web pages, from a server. The resulting load
makes the server sluggish or inaccessible.
In addition, TippingPoint's existing DoS/DDoS Protection includes:
- Vulnerability Protection - Protects against DoS attacks that exploit
vulnerabilities
- Attack Tool Protection - Protects against well-known DDoS attack programs
including TFN, Loki and Stacheldraht
- Threshold Filters - Protects against packet floods like ICMP, TCP or UDP
that can consume network bandwidth or server resources causing legitimate packets
to be dropped. These filters baseline and throttle traffic when it goes beyond a
set percentage.